Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo zetech.ac.ke

Group: Babuk2

Discovered by ransomware.live: 2025-01-27

Estimated attack date: 2025-01-27

Country: KE

Description:

zetech.ac.ke


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 79

Compromised Users: 1556

Third Party Employee Credentials: 495


External Attack Surface: 115



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • billing@kenet.or.ke
MX Records
  • No MX records found.
TXT Records
  • MS=ms46703144
  • MS=ms53186242
  • google-site-verification=CuTRYv172Iqx--hXtQhgnFLk3bulPI2wYAVP-yHlJg0
  • google-site-verification=HdItG6PCdTE83DpFGdw1RrZZlOINhqiTYOijdQHkaiw
  • v=spf1 mx ip4:209.85.220.69 ip4:197.138.0.1/24 include:_spf.google.com ~all
  • google-site-verification=SBUBjh3BJfGVPeWmaT8yQxWcX22ii8NfkWbSWfkrKN0
  • google-site-verification=Rql3FHvLjJCDvdOV15mKdABpDfPICaQtgyFh7zRI4QM
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot